Job
- Level
- Experienced
- Job Field
- IT, BI, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Zorneding
- Working Model
- Onsite
Job Summary
In this role, you monitor the implementation of information security and data management standards, conduct risk analyses, and further develop the ISMS to meet regulatory requirements.
Job Technologies
Your role in the team
- Maintenance, operation, and further development of the existing ISMS (TISAX system, Assessment Level 3)
- Monitoring the continuous compliance with all ISMS requirements
- Further development of the existing ISMS to ISO/IEC 27001
- Conducting protection requirement assessments, risk analyses, and risk treatments.
- Creation, maintenance, and further development of ISMS documentation
- Planning and conducting internal and external audits (TISAX & ISO 27001)
- Derivation, implementation, and tracking of corrective and improvement measures
- Close collaboration with IT to implement technical and organizational ISMS requirements.
- Planning and evaluating internal security tests and vulnerability assessments
- Support in handling security incidents (Incident Management)
- Development and implementation of a company-wide Data Governance framework
- Establishment of standards for data quality, data collection, storage, usage, and disposal.
- Identification, documentation, and cataloging of data sets, often through Data Dictionaries or Business Glossaries.
- Establishment of Data Governance structures (e.g., Data Stewards, Data Owners)
- Ensuring compliance with legal data protection regulations (GDPR/DSGVO) and access controls
- Monitoring and improving data consistency across various systems (e.g., ERP, CRM)
- Conducting training sessions and awareness measures on information security
- Consulting of specialist departments and management on all issues of information security
- Regular reporting to management and executive leadership
This text has been machine translated. Show original
Our expectations of you
Education
- You have a completed degree in Computer Science, IT Security, Business Informatics, or a comparable qualification with relevant professional experience.
Qualifications
- You have very good technical IT skills, e.g.: networks and IT infrastructures, IT security architectures and measures.
- You have a structured, analytical, and independent working style.
- You possess a high sense of responsibility and a strong commitment to quality.
- You have strong communication skills and a confident demeanor when interacting with IT, specialist departments, and auditors.
- You have the ability to pragmatically combine technical and organizational requirements.
- You have a deep understanding of data architectures, data warehousing, data management, and relevant regulatory requirements.
Experience
- You have several years of practical experience in the field of information security / IT security / data governance projects or in related areas.
- You have very good knowledge and practical experience with TISAX, ideally Assessment Level 3.
- You have experience in establishing and operating an ISMS according to ISO/IEC 27001.
- You have experience with internal audits, assessments, or security testing.
This text has been machine translated. Show original
What we offer
- You will receive 30 days of annual leave, and by adhering to time tracking, you will have the opportunity for compensatory time off.
- You have the option to arrange your 38-hour workweek flexibly.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Topics that you deal with on the job
Job Locations
This is your employer
CERTANIA Industrial Analytics GmbH
CERTANIA Industrial Analytics GmbH is a renowned company specializing in industrial analytics and materials testing. It provides a comprehensive range of services for the manufacturing industry and is part of the international CERTANIA Group. With several locations in Germany, the company operates as a complete provider in materials technology.
Description
- Company Type
- Established Company
- Working Model
- Onsite
- Industry
- Industry, Production